Splunk Search

Splunk Search
Community Activity
eyetter3
So, I've crafted a query that I thought would be working, but due to the nature of floating point numbers in Splunk, ...
by eyetter3 New Member in Splunk Search 12-11-2018
0 2
0
2
thambisetty
Hi I have data like below in the Active Directory. Account Name - L-15485 D-5486 BLR-DC-09$ Here is my query; | se...
by SplunkTrust SplunkTrust in Splunk Search 12-11-2018
0 7
0
7
ChrisCLewis
Good afternoon, I am trying to find a way to carry out a search to find a subset of data and to then carry out more...
by ChrisCLewis Communicator in Splunk Search 12-11-2018
0 3
0
3
aragoma
The following field after event_message is event_parameters:Film Configuration: {0} Name: {1} DateTime: {2} Note: {3}...
by aragoma Engager in Splunk Search 12-11-2018
0 6
0
6
hanacurtis
I have several csv lookup tables that are nightly updated by a scheduled report when no one is using the system. The...
by hanacurtis New Member in Splunk Search 12-11-2018
0 0
0
0
splunksplunk232
HI all, I have a log file that looks like that: 10-12-2018(8:50) INFO system.logIn - log in: yoni 10-12-2018(8:50) ...
by splunksplunk232 Explorer in Splunk Search 12-11-2018
0 2
0
2
lohsed
I'm a fairly inexperienced Splunk user that could use some pointers on how to accomplish building a dashboard/table u...
by lohsed New Member in Splunk Search 12-11-2018
0 5
0
5
jabirabdulkader
How to get logs do you get logs regarding deleting or modifying file / Folder from servers?
by jabirabdulkader New Member in Splunk Search 12-11-2018
0 1
0
1
keishamtcs
Hi, I need to write an if statement for the following condition. I have two services in which status is shown by 0 o...
by keishamtcs Explorer in Splunk Search 12-11-2018
0 7
0
7
jabirabdulkader
How to configure to get alerts regarding software installation or uninstall from a server
by jabirabdulkader New Member in Splunk Search 12-11-2018
0 0
0
0
schose
Hi forum, We increased Memory on multiple VM Instances running splunk from 64GB to 128GB. On some instances change i...
by schose Builder in Splunk Search 12-11-2018
1 0
1
0
ddaks
Hi Team, I am new to splunk ,i need to know is there any possibility to create Alerts through SMS for monitoring 24/...
by ddaks New Member in Splunk Search 12-11-2018
0 0
0
0
angersleek
I'm using the following search and getting the following results. This search is done over 7 days. Is there a way I ...
by angersleek Path Finder in Splunk Search 12-11-2018
0 1
0
1
dinaabdelhakam
Hello There I have Field which states the Case ID whether its ACTIVE , RESOLVED, PENDING or CLOSED I need to count ea...
by dinaabdelhakam Path Finder in Splunk Search 12-11-2018
0 0
0
0
stevepkr84
Assuming these 3 docs, how can I create a table where I dedupe by account (I want the most recently ingested event) a...
by stevepkr84 New Member in Splunk Search 12-11-2018
0 5
0
5
damonmanni
I want to display a modified time-picker that shows only the following preset choices: Last 24 hours Last 3 days Las...
by damonmanni Path Finder in Splunk Search 12-10-2018
0 0
0
0
albyva
I am running a DNS lookup on IP addresses using the following arrangement, but it is running very, very, very, slow b...
by albyva Communicator in Splunk Search 12-10-2018
0 3
0
3
rsantoso_splunk
I have a Search Head cluster setup. Within the search app, I have defined a number of lookups, which I would like to ...
by rsantoso_splunk Splunk Employee Splunk Employee in Splunk Search 12-10-2018
0 2
0
2
arpitadu
Hi all, I have loaded the last 3 years of historical data from a CSV file to Splunk — so source is "XYZ.csv". On the...
by arpitadu Explorer in Splunk Search 12-10-2018
0 2
0
2
a212830
Hi, I had to rebuild an indexer, and it's now up and running, but it doesn't have the most recent updates that we ha...
by a212830 Champion in Splunk Search 12-10-2018
0 7
0
7
ankithreddy777
We have Windows servers blocked for executing batch scripts. So, how do I run the below Splunk CLI command schedul...
by ankithreddy777 Contributor in Splunk Search 12-10-2018
0 1
0
1
medvelsplunk
Hi I have this search in my dashboard and i want create a token filter for search the result of the field "sucursal...
by medvelsplunk Engager in Splunk Search 12-10-2018
0 2
0
2
lball
I'm trying to filter my Tenable results to show only vulnerabilities seen within the last 7 days. Here is my current ...
by lball Explorer in Splunk Search 12-10-2018
0 3
0
3
angersleek
I am trying to combine results from two different time lines into a single table. The search query for 1 day as fol...
by angersleek Path Finder in Splunk Search 12-10-2018
0 2
0
2
jsights
I've read through a lot of articles, but I can't figure out how to make this work. My query is below. For ease of rea...
by jsights New Member in Splunk Search 12-10-2018
0 1
0
1
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Upcoming Webinar: Unmasking Insider Threats with Slunk Enterprise Security’s UEBA

Join us on Wed, Dec 10. at 10AM PST / 1PM EST for a live webinar and demo with Splunk experts! Discover how ...

.conf25 technical session recap of Observability for Gen AI: Monitoring LLM ...

If you’re unfamiliar, .conf is Splunk’s premier event where the Splunk community, customers, partners, and ...

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...